Proof-carrying network code

4Citations
Citations of this article
51Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Computer networks often serve as the first line of defense against malicious attacks. Although there are a growing number of tools for defining and enforcing security policies in software-defined networks (SDNs), most assume a single point of control and are unable to handle the challenges that arise in networks with multiple administrative domains. For example, consumers may want want to allow their home IoT networks to be configured by device vendors, which raises security and privacy concerns. In this paper we propose a framework called Proof-Carrying Network Code (PCNC) for specifying and enforcing security in SDNs with interacting administrative domains. Like Proof-Carrying Authorization (PCA), PCNC provides methods for managing authorization domains, and like Proof-Carrying Code (PCC), PCNC provides methods for enforcing behavioral properties of network programs. We develop theoretical foundations for PCNC and evaluate it in simulated and real network settings, including a case study that considers security in IoT networks for home health monitoring.

Cite

CITATION STYLE

APA

Skalka, C., Kwon, M., Ring, J., Gupta, S., Darais, D., Diller, K., … Foster, N. (2019). Proof-carrying network code. In Proceedings of the ACM Conference on Computer and Communications Security (pp. 1115–1129). Association for Computing Machinery. https://doi.org/10.1145/3319535.3363214

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free